Payment Systems โข Payment Facilitation โข Risk and Undewriting โข Payment Infrastructure โข APIs
51 - 200 employees
Founded 2015
September 5
๐บ๐ธ United States โ Remote
๐ California โ Remote
โฐ Full Time
๐ก Mid-level
๐ Senior
๐ฎโโ๏ธ Security Engineer
๐ฆ H1B Visa Sponsor
Payment Systems โข Payment Facilitation โข Risk and Undewriting โข Payment Infrastructure โข APIs
51 - 200 employees
Founded 2015
โข Identify and validate key controls from enterprise and functional risk assessments to mitigate risks. โข Ensure annual updates to the Enterprise and functional risk assessments (Ops, Tech, People, Legal, IT) are completed and communicated to support SOC and InfoSec policy administration. โข Manage key risk updates and remediation in our Drata GRC tool. โข Develop and execute quarterly internal risk self-assessments and mini-audits of key controls, documenting required remediation to stay ahead of potential risks. โข Oversee critical areas such as User Access reviews, Firewall rules reviews, Change Management, Vulnerability Management, Business Continuity/Disaster Recovery, and Employee training compliance. โข Ensure compliance with PCI requirements for merchants, sub-merchants, and vendor PCI/SOC reports, and run OFAC sanctions screening during vendor approvals and contract renewals. โข Conduct comprehensive compliance and risk reviews for all vendors and clients, ensuring they meet the corporate InfoSec program's requirements. โข Operate the vendor re-review process, ensuring alignment with PCI, SOC, and Sponsor Bank requirements, and maintain thorough documentation for audits. โข Gather evidence and documentation for external audits related to Compliance and InfoSec programs, including those by PCI QSA, SOC Audit firm, AML Independent Audit firm, Visa, Mastercard, American Express, Discover, and sponsor banks. โข Track and document any required remediation from audit findings to ensure ongoing compliance.
โข Payments experience โข An aptitude for digging deep into Information Security requirements โข 3+ years of experience in PCI, SOC, security audits, AML audits or equivalent assessments (client-side, servicer, assessor, or industry consultant) โข A talent for analyzing requirements of Information Security and Compliance frameworks, particularly as they relate to the payment industry, and crafting solutions for adherence โข Knowledge of cloud computing and nuances of managing in an AWS/Microsoft/Google cloud vs. traditional on-premise data centers โข Optional: Industry certifications (CRISC, CTPRP, SSCP, CISSP, CISA, CISM) that demonstrate your desire to be the best at what you do
Apply NowAugust 31
Define and implement Oneโs Information Security strategy as a GRC Security Analyst.
August 29
Architect and deploy Microsoft Defender solutions at Cyclotron.
August 27
Enhance AI/ML security posture for customers through guidance and support.
๐บ๐ธ United States โ Remote
๐ฐ $15.1M Series A on 2023-08
โฐ Full Time
๐ก Mid-level
๐ Senior
๐ฎโโ๏ธ Security Engineer
August 27
Oversee IT projects ensuring compliance with security and regulatory standards for automotive dealerships.
๐บ๐ธ United States โ Remote
๐ต $69.8k - $135.4k / year
โฐ Full Time
๐ก Mid-level
๐ Senior
๐ฎโโ๏ธ Security Engineer
August 26
Support PEO C3T Tactical Network systems through network engineering and design.